VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
File Name :KanmeinvApp(channel-domob)_2014-12-9.apk (File not down)
File Size :1480597 byte
File Type :Zip archive data
MD5:cd562889f15c9777178d439ddf1e880d
SHA1:ed2120b2861dbf1f2e94889701ccf2bbdb1b6466
SHA256:2d816b31103d42a1574ddd2a6272252ebe62baff8692379fdc534be0418144cc
SSDEEP:24576:5soBazfamt/E2q1neQT2k1htTENNgVPUMt27VXyal14SUBlvTo:5soErl+1neY5rPUMU7VXZ4SSvTo
  • 扫描结果
  • 权限
  • 文件行为分析
  • Scanner results
    Scanner results:15%Scanner(s) (6/39)found malware!
    Behavior analysis report:         Habo file analysis
    Time: 2014-12-10 19:12:11 (CST)
    VirSCANVirSCAN
    Scanner Engine Ver Sig Ver Sig Date Scan result Time
    ahnlab 9.9.9 9.9.9 2013-05-28 Found nothing 4
    antivir 1.9.2.0 1.9.159.0 7.11.193.163 Found nothing 22
    antiy AVL SDK 3.0 2014112721562300 2014-11-27 Found nothing 5
    arcavir 1.0 2011 2014-05-30 Found nothing 1
    asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Android.Adware.Youmi.A 1
    avast 141208-0 4.7.4 2014-12-08 Found nothing 4
    avg 2109/8133 10.0.1405 2014-11-26 Found nothing 4
    baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 6
    baidusd 1.0 1.0 2014-04-02 Found nothing 1
    bitdefender 7.57701 7.90123 2014-11-13 Android.Adware.Youmi.A 20
    clamav 19745 0.97.5 2014-12-07 Found nothing 2
    comodo 15023 5.1 2014-12-08 Found nothing 3
    ctch 4.6.5 5.3.14 2013-12-01 Found nothing 1
    drweb 5.0.2.3300 5.0.1.1 2014-10-31 Found nothing 58
    fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 1
    fprot 4.6.2.117 6.5.1.5418 2014-12-08 Found nothing 3
    fsecure 2014-04-02-01 9.13 2014-04-02 Android.Adware.Youmi.A 14
    gdata 24.5408 24.5408 2014-12-09 Android.Adware.Youmi.A 8
    hauri 2.73 2.73 2014-12-08 Found nothing 1
    ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 12
    jiangmin 16.0.100 1.0.0.0 2014-08-20 Found nothing 35
    kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 51
    kingsoft 2.1 2.1 2013-09-22 Found nothing 7
    mcafee 7638 5400.1158 2014-11-30 Found nothing 35
    nod32 0801 3.0.21 2014-11-29 a variant of Android/AdDisplay.Youmi.G application 2
    panda 9.05.01 9.05.01 2014-12-08 Found nothing 5
    pcc 11.332.02 9.500-1005 2014-12-08 Found nothing 2
    qh360 1.0.1 1.0.1 1.0.1 Found nothing 10
    qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 1
    quickheal 14.00 14.00 2014-12-08 Found nothing 3
    rising 25.43.03.04 25.43.03.04 2014-12-04 Found nothing 2
    sophos 5.08 3.55.0 2014-12-01 Found nothing 6
    sunbelt 3.9.2595.2 3.9.2595.2 2014-12-07 Adware.AndroidOS.Youmi.g 2
    symantec 20141205.003 1.3.0.24 2014-12-05 Found nothing 1
    tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 5
    thehacker 6.8.0.5 6.8.0.5 2014-12-05 Found nothing 2
    tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 7
    vba 3.12.26.3 3.12.26.3 2014-12-08 Found nothing 17
    virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 13
    Heuristic/Suspicious Exact
    NOTICE: Results are not 100% accurate and can be reported as a false positive by some scannerswhen and if malware is found. Please judge these results for yourself.
  • 权限列表
    许可名称信息
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.RECEIVE_SMS监控接收短信
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.RECEIVE_BOOT_COMPLETED接收开机启动广播
    android.permission.WRITE_APN_SETTINGS改写APN设置(如:cmwap)
    android.permission.CHANGE_NETWORK_STATE变更网络状态
    android.permission.CHANGE_WIFI_STATE改变WIFI连接状态
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    com.android.launcher.permission.INSTALL_SHORTCUT创建快捷方式
  • 文件信息
    安全评分 :86
    基本信息
    MD5:cd562889f15c9777178d439ddf1e880d
    包名:com.jixiang.kanmeinv
    最低运行环境:Android 2.2.x
    版权:看美女公司
    其他行为
    行为描述:窗口信息
    详情信息:Pid = 1972, Hwnd=0xb01de, Text = 按钮, ClassName = Button.
    动态列表行为
    行为描述:数据泄露
    详情信息:sink:File operation:write data:data:<?xml version='1.0' encoding='utf-8' standalone='yes' ?> <map> <long name="session_end_time" value="
    sink:File operation:write data:data:<?xml version='1.0' encoding='utf-8' standalone='yes' ?> <map> <long name="a_start_time" value="1398
    sink:File operation:write data:data:<?xml version='1.0' encoding='utf-8' standalone='yes' ?> <map> <long name="a_start_time" value="0" /
    行为描述:传递附加信息
    详情信息:Ljava/lang/String;=title | Ljava/lang/String;=
    Ljava/lang/String;=txt | Ljava/lang/String;=
    行为描述:调用哈希算法
    详情信息:MD5
    行为描述:读取文件
    详情信息:path:/proc/meminfo length:105
    path:/proc/meminfo length:105
    path:/proc/783/cmdline length:105
    path:/proc/799/cmdline length:105
    path:/proc/811/cmdline length:105
    path:/proc/841/cmdline length:105
    path:/proc/852/cmdline length:105
    path:/proc/900/cmdline length:105
    path:/proc/902/cmdline length:105
    行为描述:写入文件
    详情信息:path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
    path:/data/data/com.android.musicfx/shared_prefs/musicfx.xml length:105
    path:/data/data/com.jixiang.kanmeinv/shared_prefs/CE94557724F842149D690D0E8CBB1CBD.xml length:105
    path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
    行为描述:对指定数据计算哈希
    详情信息:357242043237511
    5486643afd98c5499a0015c3
    13988510768175486643afd98c5499a0015c3357242043237511
    FTZNgRJZOBk5
    aea559de115cb5a574b8
    72ab75b3da9faea559de
    yKl76nGU1e7a
    17a34502bbf6d472713e
    2b69c85e80b817a34502
    android
    9ca8fcd150a417ecce58
    c31b32364ce19ca8fcd1
    357242043237511310260000000000yuJtmxbnRzbmWJnK
    ef45N92f053P36cd29ed3bdb3d34a4e2C9LC
    8470a5174e8ad170bebd35e76d617e1222&d3894529ac5a14ec&&QUgUvcaYj0Ztr&&Full Android on Emulator&unknown&357242043237511&android 4.1.1&310260000000000&&US&en&768&1184&320&0&0&&unknown&Android&generic&1398851080
    IaDtqH8470a5174e8ad170bebd35e76d617e12
    a2U9dn73sdLs
    0cc0d4461a3b70fc8fa8
    f973e7d92f650cc0d446
    a2U9dn73sdLc
    49993f493b98b795e8d3
    de68d1cc849949993f49
    a2U9dn73sdLa
    cdf773f4fbe31c6b400b
    0603de944f72cdf773f4
    行为描述:数据加密
    详情信息:{u'operation': u'encryption', u'data': u'c75c64e1d7795153', u'algorithm': u'PBEWITHMD5andDES'}
    {u'operation': u'encryption', u'data': u'29ed3bdb3d34a4e2', u'algorithm': u'PBEWITHMD5andDES'}
    行为描述:类加载
    详情信息:path:/system/app/PicoTts.apk
    path:/system/app/MusicFX.apk
    path:/system/framework/am.jar
    path:/data/app/com.jixiang.kanmeinv-1.apk
    行为描述:获取用户ID
    详情信息:310260000000000
    行为描述:启动服务
    详情信息:com.android.musicfx.Compatibility$Service
    com.jixiang.setting.MyService
    com.android.mms.transaction.SmsReceiverService
    行为描述:初始化Intent
    详情信息:Landroid/content/Context;=com.jixiang.setting.WelcomeActivity@415501b8 | Ljava/lang/Class;=class com.jixiang.setting.MyService
    Landroid/content/Context;=com.jixiang.setting.WelcomeActivity@415501b8 | Ljava/lang/Class;=class com.jixiang.setting.NoticeActivity
    行为描述:激活Activity
    详情信息:cmp=com.jixiang.kanmeinv/com.jixiang.setting.NoticeActivity (has extras)
    行为描述:获取设备ID
    详情信息:357242043237511
    Activities
    活动名类型
    com.jixiang.setting.WelcomeActivityandroid.intent.action.MAIN
    com.jixiang.setting.WelcomeActivityandroid.intent.category.LAUNCHER
    危险函数
    函数名称信息
    TelephonyManager;->getDeviceId搜集用户手机IMEI码、电话号码、系统版本号等信息
    HttpClient;->execute请求远程服务器
    ContentResolver;->query读取联系人、短信等数据库
    WifiManager;->setWifiEnabled变更WIFI状态
    getRuntime获取命令行环境
    java/net/URL;->openConnection连接URL
    java/net/HttpURLConnection;->connect连接URL
    LocationManager;->getLastKnownLocation获取地址位置
    DefaultHttpClient;->execute发送HTTP请求
    java/lang/Runtime;->exec执行字符串命令
    android/app/NotificationManager;->notify信息通知栏
    启动方式
    名称信息
    com.jixiang.setting.BootReceiver开机启动服务
    com.jixiang.setting.BootReceiverWIFI状态改变时启动服务
    com.jixiang.setting.BootReceiver网络连接改变时启动服务
    com.jixiang.setting.BootReceiver屏幕解锁启动服务
    com.jixiang.kanmeinv.widget.UILWidgetProvider更新应用小部件时启动服务
    net.youmi.android.AdReceiver应用安装时启动服务
    广告信息
    名称信息
    net.youmi有米广告
    权限列表
    许可名称信息
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.RECEIVE_SMS监控接收短信
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.RECEIVE_BOOT_COMPLETED接收开机启动广播
    android.permission.WRITE_APN_SETTINGS改写APN设置(如:cmwap)
    android.permission.CHANGE_NETWORK_STATE变更网络状态
    android.permission.CHANGE_WIFI_STATE改变WIFI连接状态
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    com.android.launcher.permission.INSTALL_SHORTCUT创建快捷方式
    服务列表
    名称
    com.jixiang.setting.MyService
    net.youmi.android.AdService
    net.youmi.android.ExpService
    文件列表
    文件名 校验码
    assets/Living Things @#&=+-_.,!()~'%20.jpg 0x2bc669bf
    assets/NewsDetail.html 0xbbef6f9
    assets/Universal.png 0x6ef84090
    res/drawable/default_selector.xml 0xbacb383c
    res/drawable/list_bottom_selector.xml 0x9145bfcc
    res/drawable/list_center_selector.xml 0x976fbdee
    res/drawable/list_top_selector.xml 0x1901d859
    res/drawable/load_more_selected.xml 0x454579c4
    res/drawable/load_more_selector.xml 0x4519db20
    res/drawable/style_progressbar_cicle.xml 0x3c665214
    res/drawable/tabspec_style.xml 0x52d77f2b
    res/drawable/text_color.xml 0x10d5aa4c
    res/drawable/title_btn_back.xml 0x4b1b230e
    res/drawable/title_btn_right.xml 0x18faa175
    res/layout/ac_image_grid.xml 0x533cfe3c
    res/layout/ac_image_pager.xml 0xfe8372e7
    res/layout/activity_news_detail.xml 0x24a014ba
    res/layout/activity_notice.xml 0x9285534b
    res/layout/activity_setting.xml 0x5ae6f441
    res/layout/activity_welcome.xml 0xc7b36511
    res/layout/api_tab_host.xml 0x8b060991
    res/layout/api_tab_item.xml 0x3f9b87a3
    res/layout/item_appsetting.xml 0x11ec60e3
    res/layout/item_grid_image.xml 0x2024e53
    res/layout/item_pager_image.xml 0xf0a3bb4f
    res/layout/listview_head.xml 0x5d682f83
    res/layout/listview_item_layout.xml 0x335b8d91
    res/layout/listview_loadmore.xml 0x13ef8ab7
    res/layout/main_top.xml 0xd2596ef9
    res/layout/newslist_main.xml 0x47a75fb6
    res/layout/web_view.xml 0x61a83c74
    res/layout/widget.xml 0x8cbbbbe8
    res/menu/base_menu.xml 0xb9eb2a3d
    res/menu/main_menu.xml 0xb0880540
    res/menu/news_detail.xml 0xcfaa5b7f
    res/xml/widget_provider.xml 0x29a2fc7e
    AndroidManifest.xml 0x8a2d9609
    resources.arsc 0x8763a23b
    res/drawable-hdpi/arrow.png 0xb64b3453
    res/drawable-hdpi/arrow_down.png 0x14e92d65
    res/drawable-hdpi/botbg1.png 0x31f27de9
    res/drawable-hdpi/botbg2.png 0xc1e15080
    res/drawable-hdpi/ic_empty.png 0x7e34c816
    res/drawable-hdpi/ic_error.png 0xe3506f2b
    res/drawable-hdpi/ic_launcher.png 0x83f0ecb8
    res/drawable-hdpi/ic_stub.png 0x478ce9ae
    res/drawable-hdpi/mm_title_back_focused.9.png 0xf8a707b0
    res/drawable-hdpi/mm_title_back_normal.9.png 0x126df619
    res/drawable-hdpi/mm_title_back_pressed.9.png 0xe9a811ca
    res/drawable-hdpi/mm_title_btn_focused.9.png 0xe6d118f1
    res/drawable-hdpi/mm_title_btn_normal.9.png 0x6537c5c0
    res/drawable-hdpi/mm_title_btn_pressed.9.png 0xb8bafe3d
    res/drawable-hdpi/navigation_pre.png 0x9364571b
    res/drawable-hdpi/progressbar1.png 0x6f61e66
    res/drawable-hdpi/progressbar10.png 0x5bcb81e2
    res/drawable-hdpi/progressbar11.png 0x5f928c5
    res/drawable-hdpi/progressbar12.png 0x2dda1dcf
    res/drawable-hdpi/progressbar2.png 0x6fb8db83
    res/drawable-hdpi/progressbar3.png 0xaff651b7
    res/drawable-hdpi/progressbar4.png 0x1648f757
    res/drawable-hdpi/progressbar5.png 0x2d23e74e
    res/drawable-hdpi/progressbar6.png 0x32beb5f9
    res/drawable-hdpi/progressbar7.png 0x17e331f0
    res/drawable-hdpi/progressbar8.png 0xa97045b
    res/drawable-hdpi/progressbar9.png 0xf3808d73
    res/drawable-hdpi/setting_top.png 0x967010c8
    res/drawable-hdpi/tab_divider.png 0x2e517db3
    res/drawable-hdpi/top_bg.png 0xc12efab
    res/drawable-hdpi/welcome.png 0x84ae931c
    res/drawable-ldpi/ic_empty.png 0x486fb023
    res/drawable-ldpi/ic_error.png 0xdf8d2c3d
    res/drawable-ldpi/ic_stub.png 0xdf704422
    res/drawable-mdpi/ic_empty.png 0x6944c497
    res/drawable-mdpi/ic_error.png 0x5c104d85
    res/drawable-mdpi/ic_stub.png 0x5498856c
    res/drawable-xhdpi/ic_empty.png 0x291dc938
    res/drawable-xhdpi/ic_error.png 0x1b119d
    res/drawable-xhdpi/ic_stub.png 0xd7131ec1
    classes.dex 0xf67615cc
    META-INF/MANIFEST.MF 0xb3ea6b14
    META-INF/CERT.SF 0x2148acac
    META-INF/CERT.RSA 0xf0f7003c
    运行截图
    VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号